Closed training
inspection by the UODO President

Through training, your staff will be aware of what the control of the UODO President may look like and what information the controllers may ask for.

Tailored to the organisation

Online or on-site

Access to the recording after training

What is closed NIS2 training for management like?

At our training sessions, we place management at the centre of attention. Before each session, we analyse the organisation's context and tailor the content to the duties of board members.

During approximately two hours of intensive training, employees acquire key knowledge for their organisation and, through practical examples, learn how to apply it when handling whistleblower reports.

UODO inspection training

What does the training schedule look like?

Schedule

Preparation for the OCTs inspection training schedule

Module 1

I. Introduction of data protection controls

  • Control stages from notification to decision.
  • What's the difference between a scheduled check and a temporary check?
  • When and why does UODO join the organisation?

II. Basics to be aware of before controllers appear

  • Personal data, processing, consent, legal basis rapid ordering of key concepts.
  • Administrator, processor, co-administration Who is responsible for what?

III. Data breach key moment for control

  • Definition of violations, examples, responsibilities of the organization.
  • What is the procedure for responding to a breach? Who, what, when?
  • What can you expect if the inspection takes place after the incident is reported?

Module 2

I. What is UODO control in practice?

  • What's in the control report, who gets it and how fast do you need to act?
  • Who are controllers and what are their powers?
  • The duration of the check and its course day after day.

II. Control plan and its substantive scope

  • What the OCTs will focus on control plan and typical areas of study.
  • Company secrecy and the scope of information provided to the Authority.
  • Processes that are most often of interest to controllers.

III. What to do after receiving a notification of inspection?

  • A list of activities for the first 24 hours what to check, what to prepare.
  • Who should know and how to communicate in the company.
  • The most common organizational mistakes at this stage.

Module 3

I. Team preparation People are important

  • Who are the most frequently asked questions by controllers? How do you prepare these people?
  • Who should the control agent be and what role does he play?
  • Mental exercise: “put yourself in the inspector’s shoes” – understand what they are looking for.

Preparation of the checkpoint

  • Organization of the space comfort and access to documentation.
  • The rules of hospitality to controllers are informal but important.
  • Information security during inspection visits.

III. Documents to be prepared

  • Which documents are “first on the list”? – accountability in practice.
  • Register of processing activities most frequently requested document.
  • Data protection and security policies what they must contain.

Module 4

I. Documents relating to infringements

  • Procedures, applications, decisions what to show and how to arrange it?
  • Preparing documentation when the inspection involves the incident.

II. Other documents often checked during checks

  • Data processing authorisations are they current and complete?
  • Evidence of worker training What forms are accepted?
  • Trust agreements with whom, on what terms, how are they signed?

III. What can the controller request?

  • Interviewing the employee how it is done and how to prepare the person to be questioned.
  • Documents, local vision, access to systems when and to what extent?
  • What should be done if the controller requests access to restricted data or locations?

Module 5

I. Protocols and documentation of controls

  • Particle protocols What do they mean and how do we relate to them?
  • Final Protocol What does it contain and what is the objection process?
  • Does signing the protocol mean agreeing to everything?

II. When something went wrong infringements and UODO decisions

  • What happens if the inspection shows violations?
  • What are the possible UODO decisions after the inspection?
  • What's the best thing to do before an administrative decision is made?

Package of materials with GDPR Advisor

  • check
    Package of materialsEvery employee taking part in closed training receives a full package of materials, including a printed guide “How to prepare for an inspection”.
  • check
    RODO GuideThe manual contains practical guidelines, checklists and document templates to facilitate the preparation and smooth passage of checks.

Following the RODO training, staff shall:

  • checkunderstand how the control of the OCTs is carried out, including the rights and obligations of the controller and controller,
  • checkknow how to prepare the organisation step by step for the announced inspection,
  • checkhave the opportunity to ask questions to the expert,
  • checklearn how to behave during inspection and how to adjust the processing area to be as successful as possible,
  • checkthey become aware of what personal data are and what to pay attention to when processing them on a daily basis.

Opinion of the participants

Google

Tomasz G.

Google

2 years ago

starstarstarstarstar

I wanted to thank you for the wonderful training I've had at your company, the materials were very well prepared, and the instructor has shown tremendous knowledge and experience.

Google

Aleksandra P.

Google

2 years ago

starstarstarstarstar

Training at a very high level, I highly recommend!!! Training materials very useful in everyday work.

Google

Sławomir M.

Google

2 years ago

starstarstarstarstar

Mrs. Mecenas, it was an honor to be able to take part in this training, and thank you very much for your professional approach and valuable practical guidance.

Google

Wacław T.

Google

3 years ago

starstarstarstarstar

The IOD course organized by ODO24 has met all my expectations, a very practical approach, concrete examples and professional support.

Google

Maria K.

Google

1 year ago

starstarstarstarstar

The training was conducted in a way that was understandable even to those without previous experience in this field.

Google

Piotr N.

Google

10 months ago

starstarstarstarstar

Very good training, a lot of practical examples, a little bit too little time to ask questions, but overall I'm satisfied.

Google

Anna W.

Google

8 months ago

starstarstarstarstar

A professional approach, a great atmosphere during the training, the instructor answered all the questions thoroughly, and I highly recommend ODO24!

Google

Jan K.

Google

1 year ago

starstarstarstarstar

It's the best personal data protection training I've ever had, specific examples from real life, not just a dry theory, I recommend it to anyone who works with GDPR.

Google

Katarzyna J.

Google

6 months ago

starstarstarstarstar

The training meets my expectations. A lot of practical knowledge, good materials. The only drawback is too much group, so less time for individual consultations.

Google

Michał L.

Google

4 months ago

starstarstarstarstar

Excellent training! A very competent conductor with vast experience. Everything explained in a clear and understandable way. The training materials are very useful.

Google

Joanna D.

Google

3 months ago

starstarstarstarstar

I recommend ODO24 training to anyone seeking a sound knowledge of the field of ODO: professional service, excellent organisation and excellent teaching facilities.

Google

Andrzej S.

Google

2 months ago

starstarstarstarstar

Sometimes the pace was a little too fast, but the conductor was happy to return to the topics discussed earlier at the request of the participants.

What our customers say about our services

Marcin Wieczorek

Wojas

foto-lizard-media.jpg

I am very impressed with the high level of substantive expertise of the training staff"

From 13 to 17 March I attended the "Course for Information Security Administrators" organized by ODO 24 sp. z o.o. I am very impressed with the high substantive level of the training staff and the comprehensive program. Working as an ABI requires knowledge not only of legal provisions but also of IT matters, which ODO 24 took into account. Noteworthy is the curriculum, which gradually introduces increasingly advanced nuances of personal data protection, starting from the legal basics and ending with practical aspects of auditing and working with documents within a company. The complete set of materials, editable documents and publications I received will facilitate my daily work as an ABI. I can certainly recommend ODO 24 as a reliable partner offering training services of a high standard.

Scope of Services:

Magdalena Węglewska

Mazda

foto-mazda.jpg

We can wholeheartedly recommend ODO 24 as a professional and reliable partner"

For many years we have consistently placed great importance on the protection of the personal data of our customers as well as our employees. We took an active part in creating the "Code of Good Practice for the Protection of Personal Data of Customers and Potential Customers,” developed jointly by GIODO and the Polish Automotive Industry Association. Due to the complexity and variability of the rules on personal data protection, as well as Mazda’s dynamic development in Poland and the increasing volume of data we process, we decided to entrust the ABI function to a company specialized in this field. The decision to use the services of ODO 24 was primarily influenced by the experience and competence of the team of experts, the comprehensiveness of the offering and its flexibility in adapting to our organization. After a year of cooperation we can recommend ODO 24 as a professional and reliable partner.

Agnieszka Karłowicz

Spiżarnia

foto-spizarnia.jpg

A practical approach, continuous advisory availability, and positive working relationships"

We have been working with ODO24 for over a year. For us it has been a year of peaceful breathing and a sense of security: at least regarding personal data protection :-) The people at ODO are professionals who explain matters that are incomprehensible to the average person in an understandable way. They understand not only their profession but, which is very important to us, business and its requirements. A practical approach, constant advisory availability, and great relationships — all of this means I can recommend this Company to anyone who wants to work and sleep peacefully.

Tomasz Siwicki

Gefco

foto-gefco.jpg

I recommend the company ODO 24 as a professional partner"

For several years we have been cooperating with ODO 24 in the field of personal data protection. A professional team that efficiently helped us to comply with the requirements of the GDPR. We make use not only of the experts’ knowledge but also of professionally prepared e‑training, thanks to which we were able to train several hundred employees in a very short time. I highly recommend ODO 24 as a professional partner delivering services at the highest level.

UODO control training - Questions and Answers

Is it worth the training if there is no current control in your organization?

The training has been prepared to help organisations preparing for an announced UODO inspection, and to raise awareness among employees where no inspection is expected – signalling that supervisory action by the UODO is a realistic possibility, not an unlikely, distant scenario.

Should all employees be trained?

Yes and no – practical tips and easy-to-apply everyday knowledge will certainly be useful for employees across every department (assuming they have daily contact with personal data), regardless of whether they will participate in an inspection soon. However, if your organisation expects UODO inspectors to arrive shortly, you may consider focusing on the departments the inspection will cover.

It is also worth training employees who do not process data but come into contact with it, e.g. cleaning staff who clean offices unsupervised. Lack of awareness among such employees can lead to very serious consequences.

What are the real benefits of this training? Why is standard "GDPR training" not enough?

Training on preparing for a UODO inspection is based on our experience supporting clients. Having participated in UODO inspections from the preliminary stage to the final resolution, we know what inspectors pay attention to, what shortcomings can harm the inspected entity, and what actions to take for the inspection to proceed as well as possible. We have translated our practical experience into a separate training – you will not find this in standard training.

What do you do? Is training enough?

Training is certainly a good step in the preparation process for OCD checks, but as you do, you'll learn about a number of things that are worth taking before checking that aren't so obvious that you can think about them and address them appropriately in pre-checking stress.

Our greatest value is the trust of our customers.

How can we help you?

Write or call, we will find a solution

Form decoration

Use the form

The data controller will be ODO 24 sp. z o.o. with its registered office in Warsaw at ul. Kamionkowska 45. Your data will be processed for the purpose of preparing, sending and archiving the cooperation offer. More information can be found in the Privacy Policy